I see that the severity of this issue has been lowered from important to normal, and that the assessment in the Debian Security tracker reads:
[bookworm] - raptor2 <postponed> (Minor issue, revisit when fixed upstream) At the same time, I see that LibreOffice has patched its vendored raptor library [1]. So, could someone shed some light on why this is a minor issue, and whether we can safely use this library? I'm mainly asking from the perspective of a LibreOffice user here. [1] https://cgit.freedesktop.org/libreoffice/core/commit/?id=2b50dc0e4482ac0ad27d69147b4175e05af4fba4